Vulnerability Bulletins

CVE-2026-45951

   
Affected software LINUX KERNEL
 
In the Linux kernel, the following vulnerability has been resolved:

bpf: Fix a potential use-after-free of BTF object

Refcounting in the check_pseudo_btf_id() function is incorrect:
the __check_pseudo_btf_id() function might get called with a zero
refcounted btf. Fix this, and patch related code accordingly.

v3: rephrase a comment (AI)
v2: fix a refcount leak introduced in v1 (AI)

Link:

https://nvd.nist.gov/vuln/detail/CVE-2026-45951